OSX00075 - Disable Video Recording Support Software - 'Apple_iSight.kext'

Information

Your computer might be in an environment where recording devices such as cameras
or microphones are not permitted. You can protect your organization's privacy by
disabling these devices. Remove support for an external or built-in iSight camera. Note- The support for external iSight cameras should be removed on all machines. Removing only support for internal iSight cameras would still leave support for external cameras available. You can also have an Apple Authorized Technician remove the built-in video camera hardware from your Apple computer.
Important- Repeat these instructions every time a system update is installed.

Solution

Open a terminal session and enter the following commands to remove the files- sudo srm -rf /System/Library/Extensions/Apple_iSight.kext
sudo srm -rf /System/Library/Extensions/IOUSBFamily.kext/Contents/Plugins/AppleUSBVideoSupport.kext
sudo touch /System/Library/Extensions GUI Procedures- 1. Open the /System/Library/Extensions folder.
2. To remove support for the external iSight camera, drag the following file to the Trash-Apple_iSight.kext.
3. To remove support for the built-in iSight camera, control click the IOUSBFamily.kext and select Show Package Contents.
4. Open the /Contents/PlugIns/ folder.
5. Drag the following file to the Trash- AppleUSBVideoSupport.kext
6. Open Terminal and enter the following command- $ sudo touch /System/Library/Extensions The touch command changes the modified date of the /System/Library/Extensions folder. When the folder has a new modified date, the Extension cache files (located in /System/Library/) are deleted and rebuilt by Mac OS X.
7. Choose Finder -> Secure Empty Trash to delete the file. 8. Restart the system.

See Also

http://iase.disa.mil/stigs/os/mac/u_mac_osx10.5_v1r2_stig_20110729.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7, CAT|II, CSCv6|9.1, Rule-ID|SV-31305r1_rule, STIG-ID|OSX00075, Vuln-ID|V-25255

Plugin: Unix

Control ID: 12bb78c0173cab15d5c330003e420693f966cd3565a309c6fe59a5e6aecc13e1